CVE-2013-5824: Critical severity oracle java se 7 vulnerability
Oracle Java SE Update 45 fixes an unspecified vulnerability in the Deployment component (CVE-2013-5824). Upstream has CVSSv2 scored this issue as: 10.0/AV:N/AC:L/Au:N/C:C/I:C/A:C
External Reference:
http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html
Other sources
Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5787, CVE-2013-5789, CVE-2013-5832, and CVE-2013-5852.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2013-5824?
CVE-2013-5824 has a CVSSv2 score of 10.0, indicating a critical severity level.
How do I fix CVE-2013-5824?
To fix CVE-2013-5824, update your Java version to the latest patch or a version that is at least 1.6.0-update45 or 1.7.0-update45.
Which Java versions are affected by CVE-2013-5824?
CVE-2013-5824 affects multiple Java versions, specifically those prior to 1.6.0-update45 and 1.7.0-update45.
What components are impacted by CVE-2013-5824?
CVE-2013-5824 impacts the Deployment component of Oracle Java SE.
Are there any workarounds for CVE-2013-5824?
The best workaround for CVE-2013-5824 is to disable or uninstall the affected version of Java until the update is applied.